bonnard-cli — security grade SAFE, quality 69/100

Security audit verdict: SAFE · quality 69/100

No red flags found in any of the 11 categories — no credential harvesting, no data exfiltration, no curl-pipe-shell installer. Scanned against the SlowMist agent-security taxonomy, refreshed every 8 hours. Full audit →

by bonnard-data · MCP Server · ★ 50

Last updated: · Indexed by AgentSkillsHub · Auto-synced every 8h

🔒 Is bonnard-cli safe to install? View the security audit →

About bonnard-cli

Agent-native analytics. One schema, many surfaces. Docs · Getting Started · Changelog · Discord · Website BI tools serve one UI. Bonnard serves everything. Agents over MCP, apps o

agenticagentic-analyticsagentic-schemaai-analyticsbigquerydata-catalogdatabricksdbtembedded-analyticsmcp-server

Quick Facts

Stars50
Forks3
LanguageTypeScript
CategoryMCP Server
LicenseMIT
Quality Score68.9845028524476/100
Last Updated2026-07-03
Created2026-02-17
Platformscli, mcp, node
Est. Tokens~15k

Compatible Skills

These tools work well together with bonnard-cli for enhanced workflows:

  • databao-context-engine — semantic(0.36)+complementary+rare_topics+similar_pop (58%)
  • stats-store — semantic(0.24)+complementary+same_lang+similar_pop+shared_platform (53%)
  • agentic — semantic(0.16)+complementary+same_lang+similar_pop+shared_platform (51%)

bonnard-cli alternative? Top 6 similar tools

Looking for a bonnard-cli alternative? If you're comparing bonnard-cli with other mcp server tools, these 6 projects are the closest alternatives on Agent Skills Hub — ranked by topic overlap, star count, and community traction.

  • orionbelt-semantic-layer by ralforion · ⭐ 97

    Source-available semantic layer and sidecar for agentic AI and governed analytics. Compiles declarative YAML m

  • orionbelt-semantic-layer by ralfbecher · ⭐ 56

    Open-source Semantic Sidecar for AI, analytics, and governed data systems. Compiles declarative YAML models in

  • databao-context-engine by JetBrains · ⭐ 80

    Databao Context Engine is an open-source engine that automatically generates a governed semantic context from

  • cloud-finops-skills by OptimNow · ⭐ 53

    Cloud FinOps Skill & MCP by OptimNow. FinOps Foundation aligned knowledge for AI agents: cloud cost (AWS/Azure

  • penpot-mcp by montevive · ⭐ 237

    Penpot MCP server

  • mcp-fusion by vinkius-labs · ⭐ 204

    MCP Fusion - The framework for AI-native MCP servers.

More MCP Server Tools

Explore other popular mcp server tools:

View all MCP Server tools →

Popular TypeScript Agent Tools

Frequently Asked Questions

What is bonnard-cli?

bonnard-cli is Archived. Earlier Bonnard product. Current: bonnard.dev / @bonnard/mcp-charts. It is categorized as a MCP Server with 50 GitHub stars.

What programming language is bonnard-cli written in?

bonnard-cli is primarily written in TypeScript. It covers topics such as agentic, agentic-analytics, agentic-schema.

How do I install or use bonnard-cli?

You can find installation instructions and usage details in the bonnard-cli GitHub repository at github.com/bonnard-data/bonnard-cli. The project has 50 stars and 3 forks, indicating an active community.

What license does bonnard-cli use?

bonnard-cli is released under the MIT license, making it free to use and modify according to the license terms.

What are the best alternatives to bonnard-cli?

The top alternatives to bonnard-cli on Agent Skills Hub include orionbelt-semantic-layer, orionbelt-semantic-layer, databao-context-engine. Each offers a different approach to the same problem space — compare them side-by-side by stars, quality score, and community activity.

How this security grade is produced

Grades come from a rule-based scan built on the SlowMist agent-security taxonomy, covering 11 red-flag categories including credential harvesting, data exfiltration, and curl | sh installers. It is a first-layer scan, not a manual audit — we say so rather than overstate it.

The scale of the problem is documented independently: Liu et al. (2026), in a study of 31,132 agent skills, report that 26.1% contain security vulnerabilities. Our own full-catalog census is published as a citable open dataset.

Sources & who's responsible:

View on GitHub → Browse MCP Server tools